Discuz! DiscuzX X3.4 has XSS via the include\spacecp\spacecp_upload.php op parameter.
References
Link | Resource |
---|---|
http://www.whsgwl.net/text.php?textid=35 | Exploit Third Party Advisory |
Configurations
Information
Published : 2018-01-12 01:29
Updated : 2020-01-29 12:35
NVD link : CVE-2018-5376
Mitre link : CVE-2018-5376
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
discuz
- discuzx